• notannpc@lemmy.world
    link
    fedilink
    English
    arrow-up
    53
    arrow-down
    1
    ·
    4 days ago

    I doubt this is news to most folks on the Fediverse, but don’t trust Twitter, Facebook, or any company whose business model is advertising to secure your private conversations.

    Even if they aren’t up to no good today, it is only a matter of time until they come for your messages.

    • [email protected]@lemmy.federate.cc
      link
      fedilink
      English
      arrow-up
      37
      ·
      4 days ago

      As it happens, you shouldn’t trust Lemmy DMs either, as they’re not encrypted and can be read by instance administrators. So don’t use them to say anything that you wouldn’t be okay making public.

      • ferrule@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        17
        ·
        4 days ago

        this should be the default stance when using any built in encryption. always separate the mode of encryption from the mode of transmission.

        • Robust Mirror@aussie.zone
          link
          fedilink
          English
          arrow-up
          6
          ·
          3 days ago

          There was an exploit in version 0.17.0 through 0.19.0 (fixed in 0.19.1) that, from what I understand, allowed people to view DMs of anyone by reporting them, but as you can’t know the ID of a given DM you’re not part of, they couldn’t really target a specific user, but rather would just send reports to a range of potential IDs and see what comes back.

    • SouthEndSunset@lemm.ee
      link
      fedilink
      English
      arrow-up
      7
      ·
      3 days ago

      I’ve been hearing a lot of straight up adverts about WhatsApp recently, which I found interesting.

    • FreedomAdvocate@lemmy.net.au
      link
      fedilink
      English
      arrow-up
      4
      arrow-down
      10
      ·
      4 days ago

      You’re saying this on a platform that has no business model for making money and basically has no security or privacy because you’re trusting whichever random people run the instances.

      • notannpc@lemmy.world
        link
        fedilink
        English
        arrow-up
        13
        ·
        4 days ago

        And I treat this platform accordingly. There is no expectation of privacy here. You are a private as you choose to be.